CheckPoint Check Point Certified Troubleshooting Administrator - R81 156-581 Prüfungsfragen mit Lösungen:
1. Which of the following would be the most appropriate command in debugging a HideNAT issue?
A) fw ctl zdebug + fwxalloc hidenat
B) fw ctl zdebug + fwn allnat
C) fw ctl zdebug + dynamic natips natports
D) fw ctl zdebug + xlate xltrc nat
2. When running the cplic command what argument is used to show the Signature key?
A) -x
B) -S
C) -y all
D) -m
3. The Identity Awareness process that receives identity data from the identity sources and organizes it in tables before forwarding the data to the enforcement module is called
A) iaforward
B) pep
C) iasend
D) pdp
4. Some users from your organization have been reporting some connection problems with CIFS since this morning. You suspect an IPS issue after an automatic IPS update last night. So you want to perform a packet capture on uppercase I only directly after the IPS chain module (position
4 in the chain) to check if the packets pass the IPS. What command do you need to run?
A) fw monitor -pi 5 -e <filterexpression>
B) fw monitor -mI -pI 5 -e <filterexperession>
C) tcpdump -eni any <fitterexpression>
D) fw monitor -pI asm <filterexpression>
5. What process(es) should be checked if there is high I/O and you suspect it may be related to the Antivirus Software Blade?
A) cpm and fwm
B) dlpu and rad processes
C) avsp
D) cpta
Fragen und Antworten:
| 1. Frage Antwort: D | 2. Frage Antwort: A | 3. Frage Antwort: D | 4. Frage Antwort: B | 5. Frage Antwort: B |






1219 Kundenbewertungen

